Debian Dwarfutils vulnerabilities
45 known vulnerabilities affecting debian/dwarfutils.
Total CVEs
45
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH13MEDIUM21LOW5
Vulnerabilities
Page 2 of 3
CVE-2016-5036HIGHCVSS 7.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5036 [HIGH] CVE-2016-5036: dwarfutils - The dump_block function in print_sections.c in libdwarf before 20160923 allows r...
The dump_block function in print_sections.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted frame data.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
sid:
debian
CVE-2016-9275HIGHCVSS 7.5fixed in dwarfutils 20161124-1 (bookworm)2016
CVE-2016-9275 [HIGH] CVE-2016-9275: dwarfutils - Heap-based buffer overflow in the _dwarf_skim_forms function in libdwarf/dwarf_m...
Heap-based buffer overflow in the _dwarf_skim_forms function in libdwarf/dwarf_macro5.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read).
Scope: local
bookworm: resolved (fixed in 20161124-1)
bullseye: resolved (fixed in 20161124-1)
forky: resolved (fixed in 20161124-1)
sid: resolved (fixed in 20161124-1)
trixie:
debian
CVE-2016-5042HIGHCVSS 7.5fixed in dwarfutils 20160507-1 (bookworm)2016
CVE-2016-5042 [HIGH] CVE-2016-5042: dwarfutils - The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote at...
The dwarf_get_aranges_list function in libdwarf before 20160923 allows remote attackers to cause a denial of service (infinite loop and crash) via a crafted DWARF section.
Scope: local
bookworm: resolved (fixed in 20160507-1)
bullseye: resolved (fixed in 20160507-1)
forky: resolved (fixed in 20160507-1)
sid: resolved (fixed in 20160507-1)
trixie: resolved (fixed in
debian
CVE-2016-5039HIGHCVSS 7.5fixed in dwarfutils 20160507-1 (bookworm)2016
CVE-2016-5039 [HIGH] CVE-2016-5039: dwarfutils - The get_attr_value function in libdwarf before 20160923 allows remote attackers ...
The get_attr_value function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted object with all-bits on.
Scope: local
bookworm: resolved (fixed in 20160507-1)
bullseye: resolved (fixed in 20160507-1)
forky: resolved (fixed in 20160507-1)
sid: resolved (fixed in 20160507-1)
trixie: resolved (fixed in 20
debian
CVE-2016-5037MEDIUMCVSS 6.5fixed in dwarfutils 20160507-1 (bookworm)2016
CVE-2016-5037 [MEDIUM] CVE-2016-5037: dwarfutils - The _dwarf_load_section function in libdwarf before 20160923 allows remote attac...
The _dwarf_load_section function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160507-1)
bullseye: resolved (fixed in 20160507-1)
forky: resolved (fixed in 20160507-1)
sid: resolved (fixed in 20160507-1)
trixie: resolved (fixed in 20160507
debian
CVE-2016-7410MEDIUMCVSS 5.5fixed in dwarfutils 20160923-1 (bookworm)2016
CVE-2016-7410 [MEDIUM] CVE-2016-7410: dwarfutils - The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows ...
The _dwarf_read_loc_section function in dwarf_loc.c in libdwarf 20160613 allows attackers to cause a denial of service (buffer over-read) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160923-1)
bullseye: resolved (fixed in 20160923-1)
forky: resolved (fixed in 20160923-1)
sid: resolved (fixed in 20160923-1)
trixie: resolved (fixed in 20160923-1)
debian
CVE-2016-5033MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5033 [MEDIUM] CVE-2016-5033: dwarfutils - The print_exprloc_content function in libdwarf before 20160923 allows remote att...
The print_exprloc_content function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
sid: resolved (
debian
CVE-2016-5029MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5029 [MEDIUM] CVE-2016-5029: dwarfutils - The create_fullest_file_path function in libdwarf before 20160923 allows remote ...
The create_fullest_file_path function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted dwarf file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
debian
CVE-2016-7511MEDIUMCVSS 5.5fixed in dwarfutils 20160923-1 (bookworm)2016
CVE-2016-7511 [MEDIUM] CVE-2016-7511: dwarfutils - Integer overflow in the dwarf_die_deliv.c in libdwarf 20160613 allows remote att...
Integer overflow in the dwarf_die_deliv.c in libdwarf 20160613 allows remote attackers to cause a denial of service (crash) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160923-1)
bullseye: resolved (fixed in 20160923-1)
forky: resolved (fixed in 20160923-1)
sid: resolved (fixed in 20160923-1)
trixie: resolved (fixed in 20160923-1)
debian
CVE-2016-5030MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5030 [MEDIUM] CVE-2016-5030: dwarfutils - The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 a...
The _dwarf_calculate_info_section_end_ptr function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086
debian
CVE-2016-5035MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5035 [MEDIUM] CVE-2016-5035: dwarfutils - The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdw...
The _dwarf_read_line_table_header function in dwarf_line_table_reader.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+g
debian
CVE-2016-5028MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5028 [MEDIUM] CVE-2016-5028: dwarfutils - The print_frame_inst_bytes function in libdwarf before 20160923 allows remote at...
The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (NULL pointer dereference) via an object file with empty bss-like sections.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+gi
debian
CVE-2016-5034MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5034 [MEDIUM] CVE-2016-5034: dwarfutils - dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause ...
dwarf_elf_access.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted file, related to relocation records.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
debian
CVE-2016-8679MEDIUMCVSS 6.5fixed in dwarfutils 20161001-2 (bookworm)2016
CVE-2016-8679 [MEDIUM] CVE-2016-8679: dwarfutils - The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before ...
The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
Scope: local
bookworm: resolved (fixed in 20161001-2)
bullseye: resolved (fixed in 20161001-2)
forky: resolved (fixed in 20161001-2)
sid: resolved (fi
debian
CVE-2016-8681MEDIUMCVSS 5.5fixed in dwarfutils 20161001-2 (bookworm)2016
CVE-2016-8681 [MEDIUM] CVE-2016-8681: dwarfutils - The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and...
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
Scope: local
bookworm: resolved (fixed in 20161001-2)
bullseye: resolved (fixed in 20161001-2)
forky: resolved (fixed in 20161001-2)
sid: resolved (fi
debian
CVE-2016-5031MEDIUMCVSS 5.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5031 [MEDIUM] CVE-2016-5031: dwarfutils - The print_frame_inst_bytes function in libdwarf before 20160923 allows remote at...
The print_frame_inst_bytes function in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
sid: resolved
debian
CVE-2016-5032MEDIUMCVSS 6.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5032 [MEDIUM] CVE-2016-5032: dwarfutils - The dwarf_get_xu_hash_entry function in libdwarf before 20160923 allows remote a...
The dwarf_get_xu_hash_entry function in libdwarf before 20160923 allows remote attackers to cause a denial of service (crash) via a crafted file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
sid: resolved (fixed in 20
debian
CVE-2016-7510MEDIUMCVSS 6.5fixed in dwarfutils 20160923-1 (bookworm)2016
CVE-2016-7510 [MEDIUM] CVE-2016-7510: dwarfutils - The read_line_table_program function in dwarf_line_table_reader_common.c in libd...
The read_line_table_program function in dwarf_line_table_reader_common.c in libdwarf before 20160923 allows remote attackers to cause a denial of service (out-of-bounds read) via crafted input.
Scope: local
bookworm: resolved (fixed in 20160923-1)
bullseye: resolved (fixed in 20160923-1)
forky: resolved (fixed in 20160923-1)
sid: resolved (fixed in 20160923-1)
tr
debian
CVE-2016-5027MEDIUMCVSS 5.5fixed in dwarfutils 20160507+git20160523.9086738-1 (bookworm)2016
CVE-2016-5027 [MEDIUM] CVE-2016-5027: dwarfutils - dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of s...
dwarf_form.c in libdwarf 20160115 allows remote attackers to cause a denial of service (crash) via a crafted elf file.
Scope: local
bookworm: resolved (fixed in 20160507+git20160523.9086738-1)
bullseye: resolved (fixed in 20160507+git20160523.9086738-1)
forky: resolved (fixed in 20160507+git20160523.9086738-1)
sid: resolved (fixed in 20160507+git20160523.9086738-
debian
CVE-2016-8680MEDIUMCVSS 6.5fixed in dwarfutils 20161001-2 (bookworm)2016
CVE-2016-8680 [MEDIUM] CVE-2016-8680: dwarfutils - The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and...
The _dwarf_get_abbrev_for_code function in dwarf_util.c in libdwarf 20161001 and earlier allows remote attackers to cause a denial of service (out-of-bounds read) by calling the dwarfdump command on a crafted file.
Scope: local
bookworm: resolved (fixed in 20161001-2)
bullseye: resolved (fixed in 20161001-2)
forky: resolved (fixed in 20161001-2)
sid: resolved (fi
debian